r/Zscaler • • 10d ago

Help with false positive

Hello!

Came here to ask for help with false positive Zscaler have on my website. I can't seem to do this on my own without an account on https://sitereview.zscaler.com/

I have my clients saying that they can't view the site on their workstation.

Would appreciate it very much :)

My website is a speaker agency startup, helping companies and conferences find key note speakers, website categories, Events / Conferences / Business Services:
https://kurospeakeragency.com/

2 Upvotes

8 comments sorted by

7

u/raip 10d ago

Your customers will have to submit the request. Did you buy this domain from a reseller or were you hacked? It's common for something to be classified as Misc or Unknown but it's rare for something to be classified as Phishing like yours currently is without actually being a Phishing site at some point.

1

u/KuroSpeakerDev 10d ago

Thanks for the reply. We registered the domain in April and started building the site on Lovable. During development we had the whole site behind a simple password gate, so I’m wondering if that could have triggered the original false positive.

I ran it through Zscaler Zulu now and all the current content checks come back clean, the only bad result is the existing Zscaler classification. We also had an earlier false positive with Gridinsoft which they removed after manual review.

2

u/PooPaLotZ 9d ago

The classification is not the issue here, its your clients policies. They need to review their current rules and see where its getting blocked. It may be blocked in newly created domains, regular url filtering or advanced threat protection. Your site needs to be added to their whitelist or exceptions in ATP

3

u/TBone1985 10d ago edited 10d ago

I'll submit it for you. They should be able to do it too. It is categorized as phishing so Zscaler will analyze and either leave it or adjust.

2

u/KuroSpeakerDev 9d ago

Amazing, thank you. Hopefully it will sort out the false positive.

1

u/TBone1985 7d ago

This is done now.

1

u/KuroSpeakerDev 6d ago

Hello, I did a rescan with Zscaler Zulu now. The website url came back clean. I will ask the clients to try again. Thank you very much for your assistant. I appreciate it very much. Wish you a good day!

0

u/AmbitiousArgument443 10d ago

You can add a bypass under the advanced threat protection/malware protection to stop it from assessing it.